PT-2015-2366 · Adobe · Acrobat Reader Dc Continuous+3
Jaanus
·
Publicado
2015-10-13
·
Atualizado
2021-09-08
·
CVE-2015-6698
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Adobe Reader and Acrobat versions 10.x through 10.1.15
Adobe Reader and Acrobat versions 11.x through 11.0.12
Acrobat and Acrobat Reader DC Classic versions prior to 2015.006.30094
Acrobat and Acrobat Reader DC Continuous versions prior to 2015.009.20069
Description
The issue is a heap-based buffer overflow in the AcroForm implementation, allowing attackers to execute arbitrary code via unspecified vectors. This can be exploited by a remote attacker to execute code. The vulnerability is related to the implementation of AcroForm in Adobe Acrobat and Adobe Reader, which is used for editing and viewing PDF files.
Recommendations
For Adobe Reader and Acrobat versions 10.x, update to version 10.1.16 or later.
For Adobe Reader and Acrobat versions 11.x, update to version 11.0.13 or later.
For Acrobat and Acrobat Reader DC Classic, update to version 2015.006.30094 or later.
For Acrobat and Acrobat Reader DC Continuous, update to version 2015.009.20069 or later.
Correção
Buffer Overflow
Memory Corruption
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Acrobat Reader Dc Classic
Acrobat Reader Dc Continuous
Acrobat
Reader